GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
3,775 advisories
Filter by severity
A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43199
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43188
was published
Jul 30, 2025
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24119
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31243
was published
Jul 30, 2025
A local privilege escalation vulnerability exists in Commvault for Windows versions 11.20.0, 11...
High
Unreviewed
CVE-2024-13975
was published
Jul 25, 2025
An issue in ETSI Open-Source MANO (OSM) v.14.x, v.15.x allows a remote attacker to escalate...
Moderate
Unreviewed
CVE-2024-48730
was published
Jul 25, 2025
An issue in ETSI Open-Source MANO (OSM) v.14.x, v.15.x allows a remote attacker to escalate...
High
Unreviewed
CVE-2024-48729
was published
Jul 25, 2025
In OceanBase's Oracle tenant mode, a malicious user with specific privileges can achieve...
Moderate
Unreviewed
CVE-2025-8107
was published
Jul 25, 2025
This Medium severity ACE (Arbitrary Code Execution) vulnerability was introduced in version 4.2.8...
Moderate
Unreviewed
CVE-2025-22165
was published
Jul 25, 2025
A local privilege escalation vulnerability exists in lastore-daemon, the system package manager...
High
Unreviewed
CVE-2016-15045
was published
Jul 23, 2025
Authentik has insufficient check for account active status when authenticating with OAuth/SAML Sources
High
CVE-2025-53942
was published
for
goauthentik.io
(Go)
Jul 22, 2025
The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1...
High
Unreviewed
CVE-2015-10139
was published
Jul 19, 2025
Duplicate Advisory: Keycloak Privilege Escalation Vulnerability in Admin Console (FGAPv2 Enabled)
Moderate
GHSA-83j7-mhw9-388w
was published
for
org.keycloak:keycloak-services
(Maven)
Jul 18, 2025
•
withdrawn
Kaseya Rapid Fire Tools Network Detective 2.0.16.0 has Unencrypted Credentials (for privileged...
Moderate
Unreviewed
CVE-2025-32353
was published
Jul 16, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Low
Unreviewed
CVE-2025-53029
was published
Jul 15, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-53027
was published
Jul 15, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Moderate
Unreviewed
CVE-2025-53025
was published
Jul 15, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Moderate
Unreviewed
CVE-2025-53026
was published
Jul 15, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Moderate
Unreviewed
CVE-2025-53030
was published
Jul 15, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-53024
was published
Jul 15, 2025
Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft ...
High
Unreviewed
CVE-2025-50062
was published
Jul 15, 2025
Vulnerability in the Oracle GraalVM for JDK product of Oracle Java SE (component: Native Image). ...
Low
Unreviewed
CVE-2025-50065
was published
Jul 15, 2025
Vulnerability in the Oracle Database Materialized View component of Oracle Database Server. ...
Low
Unreviewed
CVE-2025-50066
was published
Jul 15, 2025
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management product of Oracle...
Moderate
Unreviewed
CVE-2025-50061
was published
Jul 15, 2025
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core)...
Moderate
Unreviewed
CVE-2025-50064
was published
Jul 15, 2025
ProTip!
Advisories are also available from the
GraphQL API